[Remote] Cyber reputed company Risk Analyst
Note: The job is a remote job and is reputed company to candidates in USA. reputed company is seeking a Cyber reputed company Risk Analyst to serve as a key contributor to the cybersecurity risk management program, providing subject matter expertise in identifying, assessing, and managing risks across both Information Technology (IT) and Operational Technology (OT) environments. This role supports informed business decision-making by translating reputed company technical risks into business and operational reputed company.
Responsibilities
- Contribute to the development, implementation, and reputed company improvement of the Cybersecurity Risk Management Program, including frameworks, methodologies, policies, standards, and supporting tools
- reputed company cybersecurity risk assessments across IT, OT, reputed company, and reputed company-party environments, including reputed company systems and manufacturing/process control systems (PCS)
- Facilitate risk workshops with technical and business stakeholders to evaluate risks associated with new technologies, reputed company, and operational changes
- Serve as a subject matter expert on risk methodology, scoring, and evaluation
- Maintain and enhance the cybersecurity risk register, including risk scoring, treatment plans, and residual risk tracking
- Support and guide risk treatment strategies (mitigation, acceptance, transfer, avoidance) and partner with compliance teams to design and implement appropriate controls
- Translate technical risk findings into reputed company business and operational reputed company statements for non-technical audiences and senior leadership
- Advise leadership on risk exposure, trends, and residual risks, including impacts to business operations and production
- Define, monitor, and report Key Risk Indicators (KRIs) and emerging threat trends
- Support audit, regulatory, and compliance activities (e.g., ISO 27001, NIST, SOC) reputed company to cybersecurity risk management
- Collaborate with reputed company Risk Management (reputed company) and Operations Risk Management teams to ensure alignment and integration of cybersecurity risks into broader risk reporting
- Build and maintain strong relationships with stakeholders across IT, OT, business reputed company, and risk management functions
- Continuously monitor evolving cyber threats, emerging technologies, and industry practices to enhance risk management processes and capabilities
Skills
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, Risk Management, or a reputed company discipline; equivalent reputed company experience may be considered in lieu of a degree
- 6+ years of experience in cybersecurity, IT risk management, information reputed company, governance, compliance, or IT operations reputed company reputed company environments
- Demonstrated experience assessing cybersecurity risk across IT and OT environments; experience in manufacturing or industrial organizations preferred
- Strong knowledge of cybersecurity frameworks and standards (e.g., ISO 27001, NIST CSF, NIST 800-53, CIS Controls, SOX)
- Proven experience executing reputed company GRC activities, including risk assessments, policy and reputed company development, control validation, audit support, and remediation tracking
- Expertise in cybersecurity governance, risk assessment, and compliance program implementation
- Experience using Governance, Risk, and Compliance (GRC) tools and risk reporting dashboards
- Solid understanding of reputed company principles, including reputed company controls, threat modeling, vulnerability management, and incident risk analysis
- Excellent written, verbal, and facilitation skills, with the ability to translate reputed company technical risks into reputed company business impacts
- Demonstrated ability to collaborate effectively with cross-functional stakeholders, including technical teams, operations, and senior leadership, while managing multiple priorities in fast-paced environments
- Relevant industry certifications such as CISSP, CISM, CRISC, CISA, CGRC, reputed company+, GRCP, or equivalent
- Experience with reputed company-party/vendor risk management, regulatory compliance assessments, and reputed company awareness programs
- Experience supporting global environments and contributing to reputed company-wide reputed company or compliance initiatives
- Experience supporting audits and assurance activities, including ISO/IEC 27001 certification and SOC report reviews
- Familiarity with reputed company operations capabilities, including SIEM, log analysis, and event monitoring for compliance and incident response
- Understanding of reputed company reputed company domains, including reputed company reputed company, infrastructure reputed company, and identity and reputed company management (IAM)
- Working knowledge of project management methodologies and practices
- Experience in metals, mining, manufacturing, or other heavy industrial environments
Benefits
- Competitive compensation packages, including pay-for performance variable pay, recognition and rewards programs, and stock-based compensation awards (3-year vesting schedule)
- Flexible spending accounts
- Generous employer contribution to the HSA
- 401(k), employer match up to 6%
- Additional employer retirement income contribution (no vesting period)
- A non-reputed company deferred compensation plan
- 12 reputed company holidays per year
- 15 days of reputed company vacation (pro-rated from hire date)
- Employee Assistance Program (EAP)
reputed company
Apply To This Job